Recent Advisories

Severity ID Title Vendor Product Date Type
NONE MALWAREBYTES:85...

These convincing copyright notices are designed to steal Google logins_MALWAREBYTES:85EC87F7CBD6CC83B7BF9E5573AE598C

A new scam is targeting people who publish Chrome extensions. The scam arrives as an official-looking "copyright removal request" claiming your e...

N/A N/A MALWAREBYTES
NONE PACKETSTORM:222526

📄 WebRemoteControl Unauthenticated Remote Filesystem Access_PACKETSTORM:222526

Proof of concept tool that demonstrates how WebRemoteControl suffers from unauthenticated remote filesystem access and potential remote code execut...

N/A N/A PACKETSTORM
NONE PACKETSTORM:222478

📄 Samba Print Command Injection_PACKETSTORM:222478

This Python proof of concept framework analyzes Samba printing configurations for unsafe print command usage involving the %J variable and demonstr...

N/A N/A PACKETSTORM
NONE PACKETSTORM:222452

📄 dcontrol 1.0.9 Screen Capture_PACKETSTORM:222452

The script is a fully featured remote screen-capture client targeting an exposed WebSocket service /ws associated with a dcontrol deployment. It in...

N/A N/A PACKETSTORM
NONE MSSECURE:B9ED78...

Microsoft Build 2026: Securing code, agents, and models across the development lifecycle_MSSECURE:B9ED7816138DDCF9595DC80BC4BD5769

In this article 1. Secure your code 2. Secure your agents 3. Trust agents with your data 4. Secure your models 5. Trust starts with secu...

N/A N/A MSSECURE
NONE HACKREAD:04E55A...

Fake ChatGPT Desktop App Ads Used to Push Password-Stealing Malware_HACKREAD:04E55A6848EC05ADD19EF1203CE058E7

Fake ChatGPT desktop app ads pushed password-stealing malware by abusing trusted AI links, hiding from scanners, and tricking users into downloads.

N/A N/A HACKREAD
NONE WIRED:CAC1E18E4...

Android Is Fighting Phone Scams With a New Feature to Prove Who’s Calling_WIRED:CAC1E18E4DDE17F26161566540D00A57

Available for Android 12 and later, the anti-scam feature is baked into Google Dialer, which sends a silent “confirmation signal” to ensure whoever...

N/A N/A WIRED
NONE 89CF473D-82C3-

Metasploit-Simulation-lab_89CF473D-82C3-5C60-8E75-259F91AAD8D3

🛡️ Metasploit Simulation Lab — Ethical Hacking Training --- Overview The Metasploit Simulation Lab is an immersive, terminal-based training environ...

N/A N/A GITHUBEXPLOIT
NONE A52C16D2-6268-

dirtyfrag_A52C16D2-6268-5E52-80BD-03B0171F0C41

Dirty Frag Overview Dirty Frag is a class of Linux kernel LPE vulnerabilities disclosed by security researcher Hyunwoo Kim @v4bel in early May 2026...

N/A N/A GITHUBEXPLOIT
NONE QUALYSBLOG:1BBF...

The HazyBeacon Protocol – How Malware Weaponizes Amazon Web Services (AWS) Lambda Function URLs_QUALYSBLOG:1BBF6B5B1C7D340BAA7806C60697CFB8

#### **Key Takeaways** * HazyBeacon (CL-STA-1020) targets Southeast Asian government networks by abusing AWS Lambda Function URLs configured wit...

N/A N/A QUALYSBLOG